Vulnerabilities
Vulnerable Software
Oracle:  >> Documaker  >> 12.6.4  Security Vulnerabilities
initDocumentParser in xml/XMLSchedulingDataProcessor.java in Terracotta Quartz Scheduler through 2.3.0 allows XXE attacks via a job description.
CVSS Score
9.8
EPSS Score
0.079
Published
2019-07-26
c3p0 version < 0.9.5.4 may be exploited by a billion laughs attack when loading XML configuration due to missing protections against recursive entity expansion when loading configuration.
CVSS Score
7.5
EPSS Score
0.069
Published
2019-04-22


Contact Us

Shodan ® - All rights reserved